FFmpeg CVE-2017-9990 Stack Buffer Overflow Vulnerability



FFmpeg is prone to a stack-based buffer overflow vulnerability.

Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users. Due to the nature of this issue, code execution may be possible but this has not been confirmed.

FFmpeg 3.3 is vulnerable.

Information

Bugtraq ID: 99313
Class: Boundary Condition Error
CVE: CVE-2017-9990

Remote: Yes
Local: No
Published: Jun 28 2017 12:00AM
Updated: Jun 28 2017 12:00AM
Credit: The vendor reported this issue.
Vulnerable:

Not Vulnerable:

Exploit


The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.


Related Posts